PT-2026-27050 · Sourcecodester · Simple E-Learning System

563742137Abc

·

Published

2026-03-23

·

Updated

2026-03-24

·

CVE-2026-4573

CVSS v2.0

6.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions SourceCodester Simple E-learning System version 1.0
Description A security issue exists in SourceCodester Simple E-learning System 1.0. The issue is related to SQL injection within the /includes/form handlers/delete post.php file, specifically through manipulation of the post id argument via an HTTP GET request. This allows for remote exploitation. The exploit has been publicly disclosed.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Special Elements Injection

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2026-4573

Affected Products

Simple E-Learning System